Senior Detection Engineer – MS Sentinel (H/F)

Thales
France
Workplace: HybridFull timeFunction: Solutions Engineering & Sales EngineeringExperience: 3+ yearsSkills: ["Continuous improvement","Technical training","Collaboration"]

Work within the CSOC team to strengthen customers’ cyber detection capabilities end-to-end, from detection through incident response. Serve as an internal and client-facing expert for Microsoft Sentinel: train technical teams, design and improve detection rules and use cases, evolve detection matrices with MITRE ATT&CK, and define collection strategies. Help automate and industrialize detection methods using AI, and contribute expertise to client projects and demonstrations.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Thales
Thales
1 month ago

Senior Detection Engineer – MS Sentinel (H/F)

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 4 hours agoStatus: Live

Job Summary

Work within the CSOC team to strengthen customers’ cyber detection capabilities end-to-end, from detection through incident response. Serve as an internal and client-facing expert for Microsoft Sentinel: train technical teams, design and improve detection rules and use cases, evolve detection matrices with MITRE ATT&CK, and define collection strategies. Help automate and industrialize detection methods using AI, and contribute expertise to client projects and demonstrations.
Location: France
Workplace: Hybrid
Employment Type: Full time
Job Function: Solutions Engineering & Sales Engineering
Seniority: Mid level

Key Responsibilities

  • •Act as the Microsoft Sentinel detection reference, supporting internal teams and customers in evolving their detection capabilities.
  • •Train and accompany technical teams on Microsoft Sentinel.
  • •Design, deploy, and continuously improve detection rules and use cases.
  • •Develop detection matrices using MITRE ATT&CK and define collection strategies for new scopes under supervision.
  • •Automate and industrialize detection methods, including using AI, and support client reviews, proposals, and demos.

Key Requirements

  • •At least 3 years of experience in security incident detection.
  • •Ability to create and evolve Microsoft Sentinel rules and detection use cases, manage alert handling and investigations.
  • •Experience with an EDR solution (HarfangLab, SentinelOne, CrowdStrike, or Microsoft Defender for Endpoint).
  • •Strong understanding of cybersecurity concepts and systems/network environments.
  • •Mastery of GitLab and Python/Bash, or a SANS certification is a plus; good written and spoken English is required for international projects.
Experience:3+ yearsCybersecuritySOC
Skills:Continuous improvementTechnical trainingCollaboration
Certifications:SANS
Languages:English
Tech Stack:Microsoft SentinelMITRE ATT&CKIntelligence ArtificielleGitLabPythonBashSANSHarfangLabSentinelOneCrowdStrikeMicrosoft Defender for EndpointEDRSOCFIR

Eligibility

Security Clearance:Secret de la défense nationale

Company Brief

Thales
Designs and delivers advanced systems and services for aerospace, defence, security, and digital identity and cybersecurity markets, serving government and commercial customers worldwide.
Industry: Defense Technology
Company Size: Enterprise (1,001+ employees)
Revenue: USD 1B+
Growth: Public Company
Valuation: Public Company (Market Cap in USD)
Funding: IPO / Publicly Listed
Headquarters: Paris, France
Founded: 2000
WebsiteLinkedIn